Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Active Directory Corruption on Exchange Member Server W2K3

Posted on 2009-04-29
4
Medium Priority
?
232 Views
Last Modified: 2012-05-06
We had a Win2K3 member server running Exchange 2003 go down today. The server, when rebooted, told us the registry files were corrupt. We went through "Recovery Console" and recovered the registry files from the C:/windows/repair directory.

On reboot, we now get an error that the Directory Services could not start...(Error message 1003 was logged in Event Log). (I was surprised that a Member server (not a DC) would have the AD database on it). We booted into Directory Services Recovery Mode and attempted to recover the AD database. Turns out the database is completely missing on this computer. We have no reliable backup on this machine for the AD. We are stuck.

We have tried to restore the NTDS.dit file from one of our DCs. This did not work. The error message is now: "Directory Services could not start, the password is incorrect"

Anyone have a solution to this. Rebuilding the Exchange server from scratch and installing the backup Exchange database is a last resort.

0
Comment
Question by:drasche
  • 2
  • 2
4 Comments
 
LVL 65

Expert Comment

by:Mestha
ID: 24265458
If it was a member server then shouldn't have anything to do with directory services, therefore I would have to presume that the problem is either that it is a DC or WAS a DC and the DC functionality wasn't removed correctly.

One option would be to be boot the machine from something like Bart CD, and rescue the Exchange files and database files. Then do a full DR on the system and use the existing database and log files. That will get you back to the state very close to failure.

Simon.
0
 

Author Comment

by:drasche
ID: 24265526
Interestingly, this machine was never a DC. It is our Exchange server though. We are following what we have seen in a number of places, that it is a really good idea to not have your Exchange Server as a DC.

We built this win2k3 server from scratch and never made it a DC. It had the  c:\windows\NTDS folder. It had a couple files in it but no ntds.dit file. If it was never a DC, I don't understand why we are getting this error.

The restore of the 5 registry files came from the c:\windows\repair directory, if that has anything to do with it?

David
0
 

Author Comment

by:drasche
ID: 24265533
BTW, what is "DR" that you refer to in the BartCD?
0
 
LVL 65

Accepted Solution

by:
Mestha earned 2000 total points
ID: 24269036
The DR I am referring to has nothing to do with BartCD. It is installing Exchange in disaster recovery mode after using the BartCD to get at the file system and remove the data that you need. As long as the domain is ok, then a rebuild of Exchange is quite straight forward.

Simon.
0

Featured Post

Vote for the Most Valuable Expert

It’s time to recognize experts that go above and beyond with helpful solutions and engagement on site. Choose from the top experts in the Hall of Fame or on the right rail of your favorite topic page. Look for the blue “Nominate” button on their profile to vote.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Stellar Exchange Toolkit: this 5 in 1 toolkit comes loaded with mega-software tool. Here’s an introduction to tools’ usage and advantages:
In this post, I will showcase the steps for how to create groups in Office 365. Office 365 groups allow for ease of flexibility and collaboration between staff members.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Suggested Courses

810 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question